Hi Leute
ich habe echt ein beschissenes Problem. System WIN XP PRO.
Ich kann weder Gerätemanager noch regedit oder Verwaltung etc. öffnen. Fehlermeldung z.B. " Das Bearbeiten der Registrierung durch den Administrator deaktiviert". Habe mich schon als Admin mit passwort eingelogt. Scheint so als funktionieren alle .msc Datein nicht mehr. Escan + Hijackthis lassen sich nicht installieren --> Fenster verschwindet nach weniger als einer Sekunde wieder. Pestscan hat einiges gefunden .Pests gefunden:
BargainBuddy,HKEY_LOCAL_MACHINE\software\classes\interface\{9388907f-82f5-434d-a941-bb802c6dd7c1},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\ed2k,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\ed2k\defaulticon,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\ed2k\shell\open\command,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\ed2k|url protocol,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\gnutella\defaulticon,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\gnutella\shell\open\command,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\gnutella\shell\open\ddeexec,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
BearShare,HKEY_LOCAL_MACHINE\software\classes\gnutella|url protocol,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\.apk,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\.arcade,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsalaunch.document,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsalaunch.document\defaulticon,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsalaunch.document\shell,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsalaunch.document\shell\install\command,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsalaunch.document\shell\open,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsapak.document,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsapak.document\defaulticon,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsapak.document\shell,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsapak.document\shell\install\command,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\classes\gsapak.document\shell\open\command,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\gamespy arcade|displayname,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
GameSpy Arcade,HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\gamespy arcade|uninstallstring,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Gigex SpeedDelivery,HKEY_CLASSES_ROOT\clsid\{6d5fcfcb-fa6c-4cfb-9918-5f0a9f7365f2},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CLASSES_ROOT\atlnet.hbwebmailsend,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CLASSES_ROOT\atlnet.hbwebmailsend.1,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CLASSES_ROOT\clsid\{954814c0-40f3-4249-8528-b4922cd2964e},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CLASSES_ROOT\clsid\{a54814c0-40f3-4249-8528-b4922cd2964e},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser|{b195b3b3-8a05-11d3-97a4-0004aca6948e},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
HotBar,HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser|{b195b3b3-8a05-11d3-97a4-0004aca6948e},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
I-Lookup,HKEY_LOCAL_MACHINE\software\classes\clsid\{421a63ba-4632-43e0-a942-3b4ab645be51},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_CURRENT_USER\software\kazaa,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in|b0seconds,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\in|b1,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate|b,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\lastestimate|time,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out|b0,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out|b0seconds,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\bandwidth\out|b1,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\connectioninfo|kazaanet,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\localcontent|databasedir,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa\localcontent|downloaddir,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\kazaa|listenport,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
KaZaA,HKEY_LOCAL_MACHINE\software\magnet,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
MasterDialer,HKEY_CLASSES_ROOT\clsid\{788a7678-38d7-4eec-9d20-67a86d21a7fd},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_CLASSES_ROOT\clsid\{18d91aca-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_CLASSES_ROOT\clsid\{18d91acf-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_CLASSES_ROOT\typelib\{18d91ad0-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_LOCAL_MACHINE\software\classes\clsid\{18d91aca-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_LOCAL_MACHINE\software\classes\clsid\{18d91acf-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
NetSlayer,HKEY_LOCAL_MACHINE\software\classes\typelib\{18d91ad0-d0be-11d1-a6b4-00aa002075da},na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Reg3dit,D:\Dokumente und Einstellungen\Administrator\Eigene Dateien\reg3dit.exe,-2090209295,750452fef3cf8ae65acf2931f918602e,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Reg3dit,\\PRIVAT-HIIW19IR\D$\Dokumente und Einstellungen\Administrator\Eigene Dateien\reg3dit.exe,-2090209295,750452fef3cf8ae65acf2931f918602e,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Unknown Trojan,D:\Recycled\Dd550.dll,-1352880366,e60a8e3889df3c95e5f8fe2473db889e,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Unknown Trojan,\\PRIVAT-HIIW19IR\D$\Recycled\Dd550.dll,-1352880366,e60a8e3889df3c95e5f8fe2473db889e,10/04/2004,00-E0-7D-C0-9D-EF,DEU
XoloX,HKEY_CLASSES_ROOT\gnutella,na,na,10/04/2004,00-E0-7D-C0-9D-EF,DEU
Bitte um Hilfe
Andre David Gast |